Improper resource allocation - Buffer overflow In openssl
This advisory was classified as a False Positive during our data review process to ensure accuracy and data quality.
Description
Duplicate Advisory: openssl X509VerifyParamRef::set_host buffer over-read
Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-xcf7-rvmh-g6q4. This link is maintained to preserve external references.
Original Description
The openssl crate before 0.10.55 for Rust allows an out-of-bounds read via an empty string to X509VerifyParamRef::set_host.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
cargo | 0.10.55 |
Aliases
1. 2.
References
1. 2. 3.